Show filters
83 Total Results
Displaying 61-70 of 83
Sort by:
Attacker Value
Unknown
CVE-2015-0591
Disclosure Date: January 15, 2015 (last updated October 05, 2023)
Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to cause a denial of service (daemon hang and GUI outage) via a flood of malformed TCP packets, aka Bug ID CSCur44177.
0
Attacker Value
Unknown
CVE-2015-0588
Disclosure Date: January 15, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuo77055.
0
Attacker Value
Unknown
CVE-2014-7991
Disclosure Date: November 14, 2014 (last updated October 05, 2023)
The Remote Mobile Access Subsystem in Cisco Unified Communications Manager (CM) 10.0(1) and earlier does not properly validate the Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof VCS core devices via a crafted certificate issued by a legitimate Certification Authority, aka Bug ID CSCuq86376.
0
Attacker Value
Unknown
CVE-2014-3338
Disclosure Date: August 12, 2014 (last updated October 05, 2023)
The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID CSCum95491.
0
Attacker Value
Unknown
CVE-2014-3317
Disclosure Date: July 14, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in the Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager 10.0(1) allows remote authenticated users to delete arbitrary files via a crafted URL, aka Bug ID CSCup76314.
0
Attacker Value
Unknown
CVE-2014-3319
Disclosure Date: July 14, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in the Real-Time Monitoring Tool (RTMT) in Cisco Unified Communications Manager (CM) 10.0(1) allows remote authenticated users to read arbitrary files via a crafted URL, aka Bug ID CSCup57676.
0
Attacker Value
Unknown
CVE-2014-3315
Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCup76308.
0
Attacker Value
Unknown
CVE-2014-3318
Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in dna/viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote authenticated users to read arbitrary files via a crafted URL, aka Bug ID CSCup76318.
0
Attacker Value
Unknown
CVE-2014-3316
Disclosure Date: July 10, 2014 (last updated October 05, 2023)
The Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote authenticated users to bypass intended upload restrictions via a crafted parameter, aka Bug ID CSCup76297.
0
Attacker Value
Unknown
CVE-2014-0743
Disclosure Date: February 27, 2014 (last updated October 05, 2023)
The Certificate Authority Proxy Function (CAPF) component in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows remote attackers to bypass authentication and modify registered-device information via crafted data, aka Bug ID CSCum95468.
0